Apple says the flaw "may allow reading or writing out of the bounds of the allocated heap. By enticing a user to visit a web page containing a maliciously-crafted Java applet, an attacker can trigger the issue which may lead to arbitrary code execution. This update addresses the issue by performing additional bounds checking when creating QTPointerRef objects."

Airport Extreme for Intel

Apple has also issued an AirPort Extreme Update 2007-003 for Intel-equipped Macs. The update "includes compatibility updates for certain third-party access points configured to use WPA or WPA2 security."

Apple has also released v1.1 of its Security Update 2007-004 which was issued earlier this month. it only affects some Mac models but addresses the following issues:

AirPort Available for: Mac OS X v10.3.9. This update corrects an issue where the AirPort connection may be lost after waking from sleep. This issue only affects Mac OS X v10.3.9 with Security Update 2007-004.